Trojan

Win32/TrojanDownloader.Small.OZZ removal tips

Malware Removal

The Win32/TrojanDownloader.Small.OZZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Small.OZZ virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to stop active services

How to determine Win32/TrojanDownloader.Small.OZZ?


File Info:

name: 03345AA1EE169D747B82.mlw
path: /opt/CAPEv2/storage/binaries/06ba8b2a12f4d9da585b769114bbb7450d525d9667fde78c9f61b8b479e5d7c8
crc32: C7FA0F5B
md5: 03345aa1ee169d747b82a7dfb94c4c33
sha1: 2f4e9d8ca3a16dd49b289aa61a06c586aeb0f679
sha256: 06ba8b2a12f4d9da585b769114bbb7450d525d9667fde78c9f61b8b479e5d7c8
sha512: 3992a8a19a552dfdc7239157e663bd169db0d45d46a01a4aa308c7d84043636b00bb3a5553ce168bac4c8fded1128b3031448e5ca1ab71a9ee6e5a7ea5e1739f
ssdeep: 384:RltOLybTltvtO4GCB35bxxY6Lf8IoTLrJLMD98:RltOGbTltFOFCBeAfrurJ4D
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12E82A096BE9888B0C18451B25CAD566EC37E2C683354C4F76BF311EDAC4AFA2551D30F
sha3_384: a5c8b25937310607508c303351d3a59ce25025b99deca0509f8cf513cd3250f5a525066f02900b48d79b8b8447b34634
ep_bytes: 558bec81ec180200005657e830040000
timestamp: 2009-02-26 08:55:08

Version Info:

0: [No Data]

Win32/TrojanDownloader.Small.OZZ also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
FireEyeGeneric.mg.03345aa1ee169d74
McAfeeArtemis!03345AA1EE16
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW32/SYStroj.N.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Small.OZZ
APEXMalicious
CynetMalicious (score: 100)
KasperskyRootkit.Win32.Small.wi
BitDefenderTrojan.CryptRedol.Gen.3
NANO-AntivirusTrojan.Win32.Small.dxrnvs
MicroWorld-eScanTrojan.CryptRedol.Gen.3
AvastWin32:Trojan-gen
Ad-AwareTrojan.CryptRedol.Gen.3
EmsisoftTrojan.CryptRedol.Gen.3 (B)
DrWebTrojan.Lundu
McAfee-GW-EditionBehavesLike.Win32.Generic.lh
SophosMal/Generic-S
IkarusRootkit.Win32.Agent
GDataTrojan.CryptRedol.Gen.3
JiangminTrojan/Inject.mey
AviraRKIT/Small.WI
Antiy-AVLTrojan/Generic.ASMalwS.865320
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
BitDefenderThetaAI:Packer.66ABF3D91F
ALYacTrojan.CryptRedol.Gen.3
MAXmalware (ai score=85)
VBA32BScope.TrojanDownloader.Agent
RisingTrojan.Generic@ML.98 (RDML:KqLl/O7Cy9+5ojXVdEjWLQ)
YandexTrojan.GenAsa!OzY0IW2qkq0
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Trojan-gen
Cybereasonmalicious.1ee169

How to remove Win32/TrojanDownloader.Small.OZZ?

Win32/TrojanDownloader.Small.OZZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment